Senior Systems Security Engineer and Vulnerability Researcher

San Francisco, USA
Full time
Office
Compensation is not specified
Role
Security Engineer
Description

Job Summary:

We are in search of a skilled Senior Systems Security Engineer & Vulnerability Researcher, with specialized knowledge in OS security, container security, hypervisor security, and process sandboxing. The role necessitates strong offensive security capabilities in detecting and exploiting vulnerabilities, specifically within the Internet Computer (IC) platform and its operation environments.

The ideal candidate will be responsible for in-depth security research, executing vulnerability assessments, developing exploits, and consistently enhancing the security posture of the IC platform.

This role is a combination of onsite and remote work (3 days onsite), situated at our San Francisco office.

Primary Duties:

Hypervisor & Virtualization Security:

  • Investigate and counteract security vulnerabilities in QEMU-based virtualization, VM isolation, and issues related to guest-to-host escape.
  • Evaluate potential attack areas within virtual machines, hypervisors, and inter-VM communication channels.
  • Develop and validate exploitation techniques aiming at vulnerabilities in hypervisors, container escapes, and side-channel leakage.
  • Design and advance secure VM execution models and Trusted Execution Environments (TEEs) utilizing AMD SEV-SNP for enforcing strong VM isolation and safeguarding workloads from compromised hypervisors.

Operating System & Process Isolation Security:

  • Fortify Linux OS security by enhancing process isolation, sandboxing, and syscall filtering.
  • Upgrade Mandatory Access Control (MAC) policies (like SELinux) to enforce enhanced access controls.
  • Research and enhance sandboxing strategies to confine untrusted processes.
  • Identify and mitigate kernel privilege escalation routes, particularly in containerized and virtualized environments.

Vulnerability Research & Exploit Development:

  • Engage in reverse engineering, binary analysis, and fuzzing to uncover vulnerabilities across OS, hypervisor, and VM layers.
  • Develop proof-of-concept (PoC) exploits for validating security threats and recommend mitigation tactics.
  • Critically analyze and enhance secure boot mechanisms, firmware security, and disk encryption strategies in virtualized environments.

Security Strengthening & Mitigations:

  • Collaborate with engineers to outline and implement hypervisor and VM security enhancement strategies.
  • Propose resilient runtime environments aimed at counteracting modern attack methods.
  • Stay updated on emerging threats concerning virtualization security, container security, and OS sandboxing.

Red Team Strategy & Operations:

  • Lead and formulate advanced Red Team initiatives targeting Internet Computer Protocol, governance, subnets, nodes, and system dApps.
  • Develop plans for adversary emulation to assess platform and infrastructure defenses, identifying weaknesses proactively.

Prerequisites:

  • Profound understanding of Linux security internals involving kernel attack surfaces, syscall security, privilege segregation, and process isolation.
  • Expertise in QEMU/KVM security, guest-to-host escapes, hypervisor fortification, and VM isolation methods.
  • Hands-on experience analyzing hypervisor-level attacks, VM evasion tactics, and security measures in virtualization.
  • Familiarity with side-channel vulnerabilities affecting virtualization environments like Spectre, Meltdown, L1TF, MDS.
  • Proficiency in Trusted Execution Environments (TEE) and secure virtualization, emphasizing QEMU and AMD SEV-SNP.
  • Experience with reverse engineering tools (e.g., Ghidra, IDA Pro, Binary Ninja, binwalk) and fuzzing frameworks.
  • Competence in adversary emulation, lateral movement techniques, privilege escalation, and exfiltration practices.
  • Expertise in securing containerized environments, covering Kubernetes security, container fortification, and runtime protection.

Compensation and Benefits:

Base Salary Range: $175,000 - $240,000 per year. Total compensation at DFINITY includes base salary plus bonus, dependent on factors like job level, expertise, educational background, experience, and location.

Inclusive of cash components, we offer comprehensive benefits such as top-tier medical, dental, vision insurance, disability insurance, life insurance, 401(k) plan, flexible PTO policy, and paid holidays.

About DFINITY and the Internet Computer:

DFINITY is at the forefront of advancing the Internet Computer Protocol (ICP), dedicated to bringing the world's compute onto the secure ICP network. Leveraging groundbreaking blockchain technology, ICP enables the creation and operation of a new era of tamper-proof, decentralized web applications. With the capability to run entire AI models within smart contracts, ICP represents a significant leap in secure AI functioning. Through seamless integration with key networks, ICP facilitates multi-chain operations for digital assets and web3.

Join Our Team:

DFINITY, established in 2016 by entrepreneur Dominic Williams, boasts a team of over 250 talented individuals committed to shaping the future of the internet and web3. Our team comprises renowned cryptographers, distributed systems engineers, programming language experts, and industry trailblazers.

DFINITY is an equal opportunity employer.

Skills Required
Avatar
Dfinity
Company size
Not specified
Location
United States
Description
Not specified

More Full-time Jobs

Show more

Crypto Outreach Hunter – High Commission (Remote)

Full time
Remote
XanaNetwork (@xananetwork) is hiring 5–8 outreach hunters. We just relaunched — same core team with a track record of multi-hundred-million caps and six-figure holder bases. Your job:• Send 300–600 high-quality cold DMs per day on Twitter (DexScreener, Pump.fun, new launches)• Get warm replies → we close Pay (performance-first):• $800–$1,200 USD monthly base• + $1,500–$4,000 bonus per signed client• Top hunters clear $8k–$15k+/mo on commission• Paid trial $100 flat — first 8 who hit 5+ warm replies get hired No experience needed — we’ll train hungry people. Apply → DM @mainnetmike on Twitter with:1. How many DMs you can send daily2. Why you want the role Hungry & coachable only.
Payment in Crypto
800-1,200
Monthly
See details

Software Developer

Part time
Remote
I’m actively looking for a native Russian speaker who can expertly conduct or participate in job interviews—especially those requiring strong communication, technical understanding, and professional presence. This person should feel at ease discussing software engineering, or related topics, while also being able to assess a candidate’s clarity, depth, and overall fit. If you’re a fluent Russian speaker with the confidence and experience to shine in a technical interview setting, I’d be excited to connect and explore the opportunity with you.
Payment in Crypto
2,000-3,000
Monthly
See details

Ethical hackering, Web security, bug Bounting+report

Rajanukunte, India
Rajanukunte, India
Part time
Remote
We are looking for a skilled Ethical Hacker who specializes in Web Security, Bug Bounties, and Report Writing. The ideal candidate will be proficient in IT and Networking concepts, with a passion for keeping web environments secure and free from vulnerabilities.
Responsibilities:
- Conducting ethical hacking activities to identify and exploit vulnerabilities in web applications and networks.
- Participating in bug bounty programs to discover and report security issues.
- Writing detailed reports documenting findings, recommended solutions, and mitigation strategies.
- Collaborating with developers and security experts to address identified vulnerabilities.
Required Skills:
- In-depth knowledge of IT and Networking principles.
- Proficiency in ethical hacking techniques and tools.
- Understanding of web security best practices.
- Strong communication and report writing skills.
- Ability to work independently and as part of a team.
If you have a strong background in IT and Networking, a keen interest in ethical hacking, and a desire to contribute to web security, we encourage you to apply for this exciting opportunity.
Payment in Crypto
100-100
Monthly
See details

Junior Crypto Analyst & Trader (Remote, Training Included)

Bruges, Belgium +9
Bruges, Belgium +9
Part time
Remote
WhiteBridge-Ltd is a young and rapidly developing company working in the field of digital markets and analytics.
We bring together enterprising people who want to master modern approaches to trading, analysis and decision-making in a dynamic market environment.
We are currently looking for a Junior Crypto Analyst & Trader, a novice specialist who is ready to complete training, perform real trading operations and develop under the guidance of experienced mentors.
 
Your Responsibilities:
Execution and support of trading operations on digital markets.
Tracking asset dynamics and market trends.
Maintaining internal records on transactions and statistics.
Analyzing market data, news, and charts for decision-making.
Work with analytical tools and participate in discussions with a team of traders.
The gradual formation and improvement of your own trading strategy.
 
What We Offer:
Working for a young and growing international company.
Remote format — you can work from anywhere in the world.
Flexible schedule — up to 20 hours per week, it is convenient to combine with study or main activity.
Learning from scratch — all processes and trading tools are mastered with a mentor.
The opportunity for professional growth and transition to more advanced levels.
 
Ideal Candidate:
He is interested in digital assets and trading processes.
He is attentive to details and is able to analyze data.
He learns quickly and is ready to act in a dynamic environment.
Knows how to work independently and in a team.
Trading experience is not required — the desire to develop is important.
Payment in Crypto
4,000-5,000
Monthly
See details

Graphic Designer for Web & Mobile Projects

Part time
Remote
We are lookang for a talented and creative graphic designer to work on various digital design project including web banners social medai posts product mockups and UI/UX layouts
Payment in Crypto